Skip to content

Commit

Permalink
Fix mail notification CI
Browse files Browse the repository at this point in the history
The notification was not working because of a CVE in postfix required to
modify the default policy becoming more restrictive.

The fix is documented here: https://bugzilla.redhat.com/show_bug.cgi?id=2255563

This is a workaround which put back the original policy. The proper fix
would be to update the code communicating with smtp server.
  • Loading branch information
fmarco76 committed Dec 23, 2024
1 parent bfb5a8e commit f9db487
Showing 1 changed file with 5 additions and 0 deletions.
5 changes: 5 additions & 0 deletions .github/workflows/ca-notification-request-test.yml
Original file line number Diff line number Diff line change
Expand Up @@ -58,6 +58,11 @@ jobs:
-e 's/^inet_protocols = .*$/inet_protocols = ipv4/' \
/etc/postfix/main.cf
# This is needed because of the smuggling fix in postfix
# https://bugzilla.redhat.com/show_bug.cgi?id=2255563
#
# The mail sender code has to be updated
docker exec pki postconf smtpd_forbid_unauth_pipelining=no
docker exec pki systemctl start postfix
- name: Install CA
Expand Down

0 comments on commit f9db487

Please sign in to comment.